MSSQL Injection lead to RCE via Custom Data Types
Story We encountered an SQL Injection vulnerability in a company project. The DBMS was MSSQL and the database...
EXPLOITING LENGTH-LIMITED XSS
In this blog, we analyze and exploit a DOM-Based XSS vulnerability found in the application’s chat feature, under...
Analysis of CVE-2024–9161 Vulnerability
Don’t throw in the towel just yet!!!! My story CVE-2024-9161 is documented as a Broken Access Control (authorization)...